ZeroHour

CVE-2022-30927

PoC
CVSS 3.1
9.8 critical
EPSS
1%p72
Published
()
Modified
Description

A SQL injection vulnerability exists in Simple Task Scheduling System 1.0 when MySQL is being used as the application database. An attacker can issue SQL commands to the MySQL database through the vulnerable "id" parameter.

Vendors
simple task scheduling system project
Products
simple task scheduling system
Weakness
CWE-89
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.